
Trigger SendAlert Command for multiple results


Dear Experts

I am using sendalert command to invoke a custom alert action. It currently only triggers once irrespective of no of results. Is it possible to trigger it for each result. 

Labels (1)
Tags (1)
0 Karma


For an alert you can trigger on each result.


0 Karma


Thanks for your response. I want to use sendalert command inside the query. I believe trigger for each result is available when we select alert action from the UI.

Get Updates on the Splunk Community!

Splunk is Nurturing Tomorrow’s Cybersecurity Leaders Today

Meet Carol Wright. She leads the Splunk Academic Alliance program at Splunk. The Splunk Academic Alliance ...

Part 2: A Guide to Maximizing Splunk IT Service Intelligence

Welcome to the second segment of our guide. In Part 1, we covered the essentials of getting started with ITSI ...

Part 1: A Guide to Maximizing Splunk IT Service Intelligence

As modern IT environments continue to grow in complexity and speed, the ability to efficiently manage and ...